Sunday, February 23, 2025
HomeCiscoHackers Allegedly Selling Data Stolen from Cisco

Hackers Allegedly Selling Data Stolen from Cisco

Published on

SIEM as a Service

Follow Us on Google News

A group of hackers reportedly sells sensitive data stolen from Cisco Systems, Inc.

The breach, allegedly carried out by a collective known as IntelBroker in collaboration with EnergyWeaponUser and zjj, has raised significant concerns across the tech industry.

Details of the Breach

According to a post on social media platform X by user H4ckManac, the compromised data includes a wide array of sensitive information.

The hackers claim to have access to GitHub and GitLab projects, SonarQube projects, source code, hardcoded credentials, certificates, customer SRCs, confidential Cisco documents, Jira tickets, API tokens, AWS private buckets, Cisco technology SRCs, Docker builds, Azure storage buckets, private and public keys, SSL certificates, and Cisco premium products. 

Analyse Any Suspicious Links Using ANY.RUN’s New Safe Browsing Tool: Try for Free

The breach appears to be extensive and potentially damaging to Cisco and several other high-profile companies allegedly impacted by the data theft.

The hackers claim that the breach has affected several major corporations. Verizon, AT&T, Bank of America, Barclays, British Telecom, Microsoft, Vodafone, and Chevron are reportedly impacted.

The potential exposure of sensitive data from these companies could have far-reaching consequences for their operations and customer trust.

The hackers have allegedly provided samples of the stolen data to substantiate their claims. If verified, this breach could represent one of the most significant cybersecurity incidents in recent history.

Industry Response and Next Steps

Cisco has yet to confirm or deny the breach publicly. However, cybersecurity experts urge affected companies to take immediate action to mitigate potential risks.

This includes reviewing access logs for suspicious activity, updating security protocols, and conducting thorough audits of their systems. 

The alleged sale of such sensitive data underscores the critical importance of robust cybersecurity measures in protecting corporate assets.

As investigations continue, companies worldwide will likely reevaluate their security strategies to prevent similar incidents.

How to Choose an ultimate Managed SIEM solution for Your Security Team -> Download Free Guide(PDF)

Divya
Divya
Divya is a Senior Journalist at GBhackers covering Cyber Attacks, Threats, Breaches, Vulnerabilities and other happenings in the cyber world.

Latest articles

New Zhong Stealer Malware Exploit Zendesk to Attack Fintech and Cryptocurrency

A newly identified malware, dubbed Zhong Stealer, has emerged as a significant threat to...

SPAWNCHIMERA Malware Exploits Ivanti Buffer Overflow Vulnerability by Applying a Critical Fix

In a recent development, the SPAWNCHIMERA malware family has been identified exploiting the buffer...

Sitevision Auto-Generated Password Vulnerability Lets Hackers Steal Signing Key

A significant vulnerability in Sitevision CMS, versions 10.3.1 and earlier, has been identified, allowing...

NSA Allegedly Hacked Northwestern Polytechnical University, China Claims

Chinese cybersecurity entities have accused the U.S. National Security Agency (NSA) of orchestrating a...

Supply Chain Attack Prevention

Free Webinar - Supply Chain Attack Prevention

Recent attacks like Polyfill[.]io show how compromised third-party components become backdoors for hackers. PCI DSS 4.0’s Requirement 6.4.3 mandates stricter browser script controls, while Requirement 12.8 focuses on securing third-party providers.

Join Vivekanand Gopalan (VP of Products – Indusface) and Phani Deepak Akella (VP of Marketing – Indusface) as they break down these compliance requirements and share strategies to protect your applications from supply chain attacks.

Discussion points

Meeting PCI DSS 4.0 mandates.
Blocking malicious components and unauthorized JavaScript execution.
PIdentifying attack surfaces from third-party dependencies.
Preventing man-in-the-browser attacks with proactive monitoring.

More like this

New Zhong Stealer Malware Exploit Zendesk to Attack Fintech and Cryptocurrency

A newly identified malware, dubbed Zhong Stealer, has emerged as a significant threat to...

SPAWNCHIMERA Malware Exploits Ivanti Buffer Overflow Vulnerability by Applying a Critical Fix

In a recent development, the SPAWNCHIMERA malware family has been identified exploiting the buffer...

Sitevision Auto-Generated Password Vulnerability Lets Hackers Steal Signing Key

A significant vulnerability in Sitevision CMS, versions 10.3.1 and earlier, has been identified, allowing...